PUA

PUP.Optional.Agent malicious file

Malware Removal

The PUP.Optional.Agent is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.Agent virus can do?

  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine PUP.Optional.Agent?


File Info:

name: A83D8A509AD167EA506A.mlw
path: /opt/CAPEv2/storage/binaries/7c15e32cb4f6700ea2875c00c9b0da473c6ffa68a6ae181bbbcfbd7ce46f69fc
crc32: 222C3866
md5: a83d8a509ad167ea506a01fa75a33084
sha1: 80d299bbf72a55e580d27840b1e3fd5cadfd5c70
sha256: 7c15e32cb4f6700ea2875c00c9b0da473c6ffa68a6ae181bbbcfbd7ce46f69fc
sha512: 1e4c365d3757250ef336e6fafb7abc732901e33c8c6b949c6775bb1e947a5d088b57e5587b2a348e1ac5aa8fb759a9b622ba6a7053542a491027deb9972eed20
ssdeep: 384:zIuqo9Bl0uuBLutbA4rjsWVjbeGD4AEd6thOucy+waD4J6R4CE2uxNyymuH:znqo9bnlfJuC7Ou6RXM3yYH
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D1E2290A6BA05136D9764272574F7757CB33893A23734A82366C060C3F3A863D6B7BD9
sha3_384: 4384b4a68763b248c2109deeefa691f341db454895b7b147d334cfbcf1ebd1eadde04bd03835f18ed14b42a4af6c0c39
ep_bytes: 56e8840000008bf0e849000000680820
timestamp: 2003-08-18 18:45:16

Version Info:

Comments: More commandline utilities at http://www.commandline.co.uk
CompanyName:
FileDescription: Commandline Window Utility for NT4/W2K/XP
FileVersion: 1.4.2.0
InternalName: cmdow
LegalCopyright: Copyright © 2001-2003 Ritchie Lawrence
LegalTrademarks:
OriginalFilename: cmdow.exe
PrivateBuild:
ProductName: CMDOW
ProductVersion: 1.4.2.0
SpecialBuild:
Translation: 0x0809 0x04b0

PUP.Optional.Agent also known as:

LionicRiskware.Win32.HideWindows.1!c
Elasticmalicious (high confidence)
DrWebTool.HideWindows.23
FireEyeGeneric.mg.a83d8a509ad167ea
CAT-QuickHealTrojan.Mploit
McAfeeTool-HideWindow.a
CylanceUnsafe
ZillyaBackdoor.CPEX.Win32.38994
CrowdStrikewin/malicious_confidence_100% (D)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/HideWindows.MTKT-6666
SymantecSecurityRisk.Cmdow
ESET-NOD32Win32/CMDOW.142 potentially unsafe
Kasperskynot-a-virus:RiskTool.Win32.HideWindows.o
NANO-AntivirusRiskware.Win32.HideWindows.bfily
SUPERAntiSpywareHackTool/Gen-RiskHideWindows
RisingTrojan.Generic@ML.99 (RDMK:O5eD/W+Xo+qIpU3K1+BxQw)
ComodoApplicUnsaf.Win32.CMDOW.142@4g9m
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionTool-HideWindow.a
SophosCmdow (PUA)
GDataWin32.Riskware.HideWindow.A
JiangminRiskTool.HideWindows.ad
eGambitGeneric.Malware
MAXmalware (ai score=99)
Antiy-AVLTrojan/Generic.ASMalwS.BC28
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ViRobotRiskTool.HideWindows.31232
MicrosoftTrojan:Win32/Occamy.AB
CynetMalicious (score: 99)
AhnLab-V3Unwanted/Win32.Hidewindows.R24016
ALYacMisc.Riskware.HideWindows
MalwarebytesPUP.Optional.Agent
MaxSecureTrojan.Malware.1124366.susgen
FortinetRiskware/HideWindow
WebrootW32.Suspicious.Heur

How to remove PUP.Optional.Agent?

PUP.Optional.Agent removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment